<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: CheckPoint Quantum 1600 Cluster stronger authentication required in Spark Firewall (SMB)</title>
    <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/CheckPoint-Quantum-1600-Cluster-stronger-authentication-required/m-p/251588#M12825</link>
    <description>&lt;P&gt;Hi everyone,&lt;/P&gt;&lt;P&gt;I was able to resolve the issue by installing the latest Gaia Embedded firmware on the 1600 appliance and configuring Entra ID integration.&lt;BR /&gt;Now, users can connect via VPN, and authentication is handled through Microsoft Entra with two-factor authentication.&lt;/P&gt;&lt;P&gt;I'm very happy with this solution.&lt;/P&gt;</description>
    <pubDate>Thu, 19 Jun 2025 06:15:39 GMT</pubDate>
    <dc:creator>LM-Rafael</dc:creator>
    <dc:date>2025-06-19T06:15:39Z</dc:date>
    <item>
      <title>CheckPoint Quantum 1600 Cluster stronger authentication required</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/CheckPoint-Quantum-1600-Cluster-stronger-authentication-required/m-p/238022#M12778</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;i have a quantum 1600 device which i need to authenticate against the new Windows Server 2025 AD Server. But i can only enter an IP Address and so is not possible to successfully connect my appliance with the LDAPS Windows Server. I get the error "Stronger authentication required". But i can enter only IP address, no Hostname or FQDN, and this is the reason the authentication fails against the AD Server.&lt;/P&gt;&lt;P&gt;What can i do to solve this issue?&lt;/P&gt;&lt;P&gt;Thanks for Help&lt;/P&gt;&lt;P&gt;Rafael&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;DIV class=""&gt;&amp;nbsp;&lt;/DIV&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 08 Jan 2025 21:53:23 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/CheckPoint-Quantum-1600-Cluster-stronger-authentication-required/m-p/238022#M12778</guid>
      <dc:creator>LM-Rafael</dc:creator>
      <dc:date>2025-01-08T21:53:23Z</dc:date>
    </item>
    <item>
      <title>Re: CheckPoint Quantum 1600 Cluster stronger authentication required</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/CheckPoint-Quantum-1600-Cluster-stronger-authentication-required/m-p/238046#M12779</link>
      <description>&lt;P&gt;By what evidence do you conclude "I&lt;SPAN&gt;&amp;nbsp;can enter only IP address, no Hostname or FQDN, and this is the reason the authentication fails against the AD Server"?&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;According to a TAC case with a similar error, we only supports LDAP simple binds and you need to disable&amp;nbsp;LDAP server signing.&lt;BR /&gt;See: &lt;A href="https://learn.microsoft.com/en-US/troubleshoot/windows-server/identity/enable-ldap-signing-in-windows-server" target="_blank"&gt;https://learn.microsoft.com/en-US/troubleshoot/windows-server/identity/enable-ldap-signing-in-windows-server&lt;/A&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 09 Jan 2025 03:37:11 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/CheckPoint-Quantum-1600-Cluster-stronger-authentication-required/m-p/238046#M12779</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2025-01-09T03:37:11Z</dc:date>
    </item>
    <item>
      <title>Re: CheckPoint Quantum 1600 Cluster stronger authentication required</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/CheckPoint-Quantum-1600-Cluster-stronger-authentication-required/m-p/239509#M12780</link>
      <description>&lt;P&gt;Hi PhoneBoy,&lt;/P&gt;&lt;P&gt;On the Windows Server 2022 Test AD Server, everything is running fine, and I can connect my firewall using LDAP. However, with the 2025 Datacenter AD Server, it is not possible, and I get the following error (see picture_1) when I click "Discover."&lt;/P&gt;&lt;P&gt;I have disabled the forced LDAPS requirement, but this did not resolve the issue. The output from LDP.exe confirms that access on port 389 without SSL is possible.&lt;/P&gt;&lt;P&gt;Where am I making a mistake?&lt;/P&gt;&lt;P&gt;Thanks and best regards,&lt;BR /&gt;Rafael&lt;/P&gt;</description>
      <pubDate>Thu, 23 Jan 2025 22:12:49 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/CheckPoint-Quantum-1600-Cluster-stronger-authentication-required/m-p/239509#M12780</guid>
      <dc:creator>LM-Rafael</dc:creator>
      <dc:date>2025-01-23T22:12:49Z</dc:date>
    </item>
    <item>
      <title>Re: CheckPoint Quantum 1600 Cluster stronger authentication required</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/CheckPoint-Quantum-1600-Cluster-stronger-authentication-required/m-p/239517#M12781</link>
      <description>&lt;P&gt;Have you disabled LDAP Server Signing as mentioned in the article I liked?&lt;/P&gt;</description>
      <pubDate>Fri, 24 Jan 2025 00:40:02 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/CheckPoint-Quantum-1600-Cluster-stronger-authentication-required/m-p/239517#M12781</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2025-01-24T00:40:02Z</dc:date>
    </item>
    <item>
      <title>Re: CheckPoint Quantum 1600 Cluster stronger authentication required</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/CheckPoint-Quantum-1600-Cluster-stronger-authentication-required/m-p/239633#M12782</link>
      <description>&lt;P&gt;Hi PhoneBoy,&lt;/P&gt;&lt;P&gt;no i have only problems when i disable ldap server signing.&lt;/P&gt;&lt;P&gt;With Server 2022 everything running fine (a separate dev environment).&lt;/P&gt;&lt;P&gt;Have you an other article for disable server signing?&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Rafael&lt;/P&gt;</description>
      <pubDate>Sun, 26 Jan 2025 12:45:55 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/CheckPoint-Quantum-1600-Cluster-stronger-authentication-required/m-p/239633#M12782</guid>
      <dc:creator>LM-Rafael</dc:creator>
      <dc:date>2025-01-26T12:45:55Z</dc:date>
    </item>
    <item>
      <title>Re: CheckPoint Quantum 1600 Cluster stronger authentication required</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/CheckPoint-Quantum-1600-Cluster-stronger-authentication-required/m-p/239650#M12783</link>
      <description>&lt;P&gt;Hi PhoneBoy,&lt;/P&gt;&lt;P&gt;i have try to enable simple bind but i think it is not possible on Windows Server 2025. I have try 3 different How To’s unsuccessfully. ldp.exe write me -&amp;gt; This server needs stronger Authentication.&lt;/P&gt;&lt;P&gt;What can i do now?&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Rafael&lt;/P&gt;</description>
      <pubDate>Sun, 26 Jan 2025 22:23:59 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/CheckPoint-Quantum-1600-Cluster-stronger-authentication-required/m-p/239650#M12783</guid>
      <dc:creator>LM-Rafael</dc:creator>
      <dc:date>2025-01-26T22:23:59Z</dc:date>
    </item>
    <item>
      <title>Re: CheckPoint Quantum 1600 Cluster stronger authentication required</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/CheckPoint-Quantum-1600-Cluster-stronger-authentication-required/m-p/239652#M12784</link>
      <description>&lt;P&gt;If you're already using R81.10.15 and this isn't working please report the issue to TAC for investigation.&lt;/P&gt;
&lt;P&gt;Pending their feedback &amp;amp; consultation with R&amp;amp;D it may require an RFE&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 27 Jan 2025 01:31:24 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/CheckPoint-Quantum-1600-Cluster-stronger-authentication-required/m-p/239652#M12784</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2025-01-27T01:31:24Z</dc:date>
    </item>
    <item>
      <title>Re: CheckPoint Quantum 1600 Cluster stronger authentication required</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/CheckPoint-Quantum-1600-Cluster-stronger-authentication-required/m-p/248178#M12785</link>
      <description>&lt;P&gt;Maybe this can be resolved by disabling LDAP Server Signing, but our customer does not want to do that ! So we have opened a SR# for him...&lt;/P&gt;</description>
      <pubDate>Tue, 06 May 2025 11:21:08 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/CheckPoint-Quantum-1600-Cluster-stronger-authentication-required/m-p/248178#M12785</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2025-05-06T11:21:08Z</dc:date>
    </item>
    <item>
      <title>Re: CheckPoint Quantum 1600 Cluster stronger authentication required</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/CheckPoint-Quantum-1600-Cluster-stronger-authentication-required/m-p/248181#M12786</link>
      <description>&lt;P&gt;TAC responded:&lt;/P&gt;
&lt;P&gt;As a first step, it's recommended to perform a firmware version upgrade on the device to a newer version, R81.10.17 you can download the firmware image from the following download link:&lt;BR clear="none" /&gt;&lt;A href="https://support.checkpoint.com/results/download/137004" target="_blank" rel="noopener" shape="rect"&gt;R81.10.17 Download link for 1530.&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;Please let me know if the issue persist after the firmware upgrade.&lt;/P&gt;</description>
      <pubDate>Tue, 06 May 2025 11:28:36 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/CheckPoint-Quantum-1600-Cluster-stronger-authentication-required/m-p/248181#M12786</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2025-05-06T11:28:36Z</dc:date>
    </item>
    <item>
      <title>Re: CheckPoint Quantum 1600 Cluster stronger authentication required</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/CheckPoint-Quantum-1600-Cluster-stronger-authentication-required/m-p/248938#M12787</link>
      <description>&lt;P&gt;Of course, upgrade did not resolve the issue and the SR# has no solution yet - and the customer is not willing to disable ldap server signing as this would mean to lower security on one end to get more security on the other. Also it looks like this procedure does not resolve the issue in all cases, if i sum up the discussion above. &lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/20406"&gt;@Amir_Ayalon&lt;/a&gt; , any comments ?&lt;/P&gt;</description>
      <pubDate>Wed, 14 May 2025 09:42:32 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/CheckPoint-Quantum-1600-Cluster-stronger-authentication-required/m-p/248938#M12787</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2025-05-14T09:42:32Z</dc:date>
    </item>
    <item>
      <title>Re: CheckPoint Quantum 1600 Cluster stronger authentication required</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/CheckPoint-Quantum-1600-Cluster-stronger-authentication-required/m-p/250934#M12788</link>
      <description>&lt;P&gt;TAC currently is preparing the documentation on the limitation for the Windows 2025 server. First statement was that&amp;nbsp;there is a limitation with Windows server 2025. As a workaround the options available are to either work with older versions, or disable the LDAP signing.&lt;/P&gt;</description>
      <pubDate>Tue, 10 Jun 2025 08:57:43 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/CheckPoint-Quantum-1600-Cluster-stronger-authentication-required/m-p/250934#M12788</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2025-06-10T08:57:43Z</dc:date>
    </item>
    <item>
      <title>Re: CheckPoint Quantum 1600 Cluster stronger authentication required</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/CheckPoint-Quantum-1600-Cluster-stronger-authentication-required/m-p/250953#M12789</link>
      <description>&lt;P&gt;Can you confirm that this is an issue relevant for GAiA Embedded only ? TAC did not mention that GAiA has the same issue, so if this is only SMB, please move the post to SMB !&lt;/P&gt;</description>
      <pubDate>Tue, 10 Jun 2025 13:12:59 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/CheckPoint-Quantum-1600-Cluster-stronger-authentication-required/m-p/250953#M12789</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2025-06-10T13:12:59Z</dc:date>
    </item>
    <item>
      <title>Re: CheckPoint Quantum 1600 Cluster stronger authentication required</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/CheckPoint-Quantum-1600-Cluster-stronger-authentication-required/m-p/250978#M12790</link>
      <description>&lt;P&gt;This seems like it's just SMB related.&lt;BR /&gt;Probably should have moved this post earlier &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 10 Jun 2025 15:26:41 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/CheckPoint-Quantum-1600-Cluster-stronger-authentication-required/m-p/250978#M12790</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2025-06-10T15:26:41Z</dc:date>
    </item>
    <item>
      <title>Re: CheckPoint Quantum 1600 Cluster stronger authentication required</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/CheckPoint-Quantum-1600-Cluster-stronger-authentication-required/m-p/251342#M12821</link>
      <description>&lt;P&gt;I have news from R&amp;amp;D:&amp;nbsp;&lt;STRONG&gt;The issue also impacts Gaia devices as well.&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;&lt;EM&gt;We would like to inform you that Windows Server 2025 is currently not officially supported&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;for Active Directory integration with the gateway. When attempting to connect the gateway&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;to an AD server running Windows Server 2025, the integration fails during the LDAP bind&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;phase (simple bind).&lt;/EM&gt;&lt;/P&gt;
&lt;P&gt;&lt;EM&gt;Our teams are actively working on delivering a solution for this issue.&lt;/EM&gt;&lt;/P&gt;
&lt;P&gt;&lt;EM&gt;However, please note that we do not have an estimated timeline at this stage, so this is&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;currently considered a limitation.&lt;/EM&gt;&lt;/P&gt;
&lt;P&gt;&lt;EM&gt;As a temporary workaround, you may choose to disable LDAP signing, Please be aware that&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;this is not recommended due to the associated security risks.&lt;/EM&gt;&lt;/P&gt;
&lt;P&gt;&lt;EM&gt;Alternatively, we recommend using a supported version such as Windows Server 2022.&lt;/EM&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 16 Jun 2025 14:20:46 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/CheckPoint-Quantum-1600-Cluster-stronger-authentication-required/m-p/251342#M12821</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2025-06-16T14:20:46Z</dc:date>
    </item>
    <item>
      <title>Re: CheckPoint Quantum 1600 Cluster stronger authentication required</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/CheckPoint-Quantum-1600-Cluster-stronger-authentication-required/m-p/251447#M12823</link>
      <description>&lt;P&gt;Do you have an SR I can review on this?&lt;/P&gt;</description>
      <pubDate>Tue, 17 Jun 2025 14:50:13 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/CheckPoint-Quantum-1600-Cluster-stronger-authentication-required/m-p/251447#M12823</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2025-06-17T14:50:13Z</dc:date>
    </item>
    <item>
      <title>Re: CheckPoint Quantum 1600 Cluster stronger authentication required</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/CheckPoint-Quantum-1600-Cluster-stronger-authentication-required/m-p/251503#M12824</link>
      <description>&lt;P&gt;Not ready yet - but i will PM the SR#.&lt;/P&gt;</description>
      <pubDate>Wed, 18 Jun 2025 07:53:27 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/CheckPoint-Quantum-1600-Cluster-stronger-authentication-required/m-p/251503#M12824</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2025-06-18T07:53:27Z</dc:date>
    </item>
    <item>
      <title>Re: CheckPoint Quantum 1600 Cluster stronger authentication required</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/CheckPoint-Quantum-1600-Cluster-stronger-authentication-required/m-p/251588#M12825</link>
      <description>&lt;P&gt;Hi everyone,&lt;/P&gt;&lt;P&gt;I was able to resolve the issue by installing the latest Gaia Embedded firmware on the 1600 appliance and configuring Entra ID integration.&lt;BR /&gt;Now, users can connect via VPN, and authentication is handled through Microsoft Entra with two-factor authentication.&lt;/P&gt;&lt;P&gt;I'm very happy with this solution.&lt;/P&gt;</description>
      <pubDate>Thu, 19 Jun 2025 06:15:39 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/CheckPoint-Quantum-1600-Cluster-stronger-authentication-required/m-p/251588#M12825</guid>
      <dc:creator>LM-Rafael</dc:creator>
      <dc:date>2025-06-19T06:15:39Z</dc:date>
    </item>
    <item>
      <title>Re: CheckPoint Quantum 1600 Cluster stronger authentication required</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/CheckPoint-Quantum-1600-Cluster-stronger-authentication-required/m-p/251778#M12854</link>
      <description>&lt;P&gt;So the issue is not resolved, it is working now as you changed from DC LDAPS to&amp;nbsp;Entra ID...&lt;/P&gt;</description>
      <pubDate>Mon, 23 Jun 2025 13:58:41 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/CheckPoint-Quantum-1600-Cluster-stronger-authentication-required/m-p/251778#M12854</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2025-06-23T13:58:41Z</dc:date>
    </item>
    <item>
      <title>Re: CheckPoint Quantum 1600 Cluster stronger authentication required</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/CheckPoint-Quantum-1600-Cluster-stronger-authentication-required/m-p/251823#M12855</link>
      <description>&lt;P&gt;I got a different answer regarding the recommended support ver.. in my SR, RnD advised to use Windows Server 2019 and below which is the supported version, not 2022. Hope we get clear answers soon.&lt;/P&gt;</description>
      <pubDate>Tue, 24 Jun 2025 00:41:48 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/CheckPoint-Quantum-1600-Cluster-stronger-authentication-required/m-p/251823#M12855</guid>
      <dc:creator>Tom_Hinoue</dc:creator>
      <dc:date>2025-06-24T00:41:48Z</dc:date>
    </item>
    <item>
      <title>Re: CheckPoint Quantum 1600 Cluster stronger authentication required</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/CheckPoint-Quantum-1600-Cluster-stronger-authentication-required/m-p/251841#M12859</link>
      <description>&lt;P&gt;Your answer was not so very different - TAC told us to use versions older than Server 2025, on June 16th:&lt;/P&gt;
&lt;P&gt;&lt;EM&gt;Our teams are actively working on delivering a solution for this issue.&amp;nbsp;&lt;/EM&gt;&lt;/P&gt;
&lt;P&gt;&lt;EM&gt;However, please note that we do not have an estimated timeline at this stage, so this is currently considered a limitation.&lt;/EM&gt;&lt;/P&gt;
&lt;P&gt;&lt;EM&gt;As a temporary workaround, you may choose to disable LDAP signing, &amp;nbsp;&lt;STRONG&gt;Please be aware that this is not recommended due to the associated security risks.&lt;/STRONG&gt;&amp;nbsp;&lt;/EM&gt;&lt;/P&gt;
&lt;P&gt;&lt;EM&gt;Alternatively, we recommend using a supported version such as Windows Server 2022.&lt;/EM&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 24 Jun 2025 07:43:48 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/CheckPoint-Quantum-1600-Cluster-stronger-authentication-required/m-p/251841#M12859</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2025-06-24T07:43:48Z</dc:date>
    </item>
  </channel>
</rss>

